Updated libvncserver packages fix security vulnerabilities
Publication date: 03 Aug 2026Modification date: 03 Aug 2026
Type: security
Affected Mageia releases : 10 , 9
CVE: CVE-2026-32853 , CVE-2026-32854 , CVE-2026-44988 , CVE-2026-50538
Description
The updated packages fix security vulnerabilities:
Heap Out-of-Bounds Read in HandleUltraZipBPP due to unchecked
subrectangle count. (CVE-2026-32853)
NULL pointer dereferences in httpd proxy handlers via malformed
CONNECT/GET requests. (CVE-2026-32854)
LibVNCClient Tight Gradient decoding allows malicious server-triggered
heap/stack OOB writes. (CVE-2026-44988)
Attacker-controlled heap out-of-bounds write in libvncclient Tight
decoder. (CVE-2026-50538)
References
- https://bugs.mageia.org/show_bug.cgi?id=35628
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/message/SULCQANWMHMI72ZJZEJWSA2YD3ZSRUKQ/
- https://github.com/LibVNC/libvncserver/security/advisories/GHSA-jcc5-8wj4-7c58
- https://ubuntu.com/security/notices/USN-8463-1
- https://github.com/LibVNC/libvncserver/security/advisories/GHSA-87q7-v983-qwcj
- https://github.com/LibVNC/libvncserver/security/advisories/GHSA-xjp8-4qqv-5x4x
- https://ubuntu.com/security/notices/USN-8494-1
- https://github.com/LibVNC/libvncserver/security/advisories/GHSA-v9pm-47h4-jcq8
- https://www.cve.org/CVERecord?id=CVE-2026-32853
- https://www.cve.org/CVERecord?id=CVE-2026-32854
- https://www.cve.org/CVERecord?id=CVE-2026-44988
- https://www.cve.org/CVERecord?id=CVE-2026-50538
SRPMS
10/core
- libvncserver-0.9.15-2.1.mga10
9/core
- libvncserver-0.9.14-1.1.mga9